Refine your search

10 vulnerabilities found for Splunk by Splunk

CERTFR-2026-AVI-1056
Vulnerability from certfr_avis

De multiples vulnérabilités ont été découvertes dans les produits Splunk. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, une élévation de privilèges et une atteinte à la confidentialité des données.

Solutions

Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).

Impacted products
Vendor Product Description
Splunk N/A MS Graph pour Active Directory app pour Splunk SOAR versions antérieures à 1.5.2
Splunk N/A Venafi app pour Splunk SOAR versions antérieures à 2.1.4
Splunk Universal Forwarder Splunk Universal Forwarder versions 10.0.x antérieures à 10.0.9
Splunk N/A AWS IAM app pour Splunk SOAR versions antérieures à 2.1.9
Splunk N/A Azure AD Graph app pour Splunk SOAR versions antérieures à 2.5.3
Splunk SOAR Splunk SOAR versions antérieures à 8.6.0
Splunk Splunk Splunk Connect pour Kafka versions antérieures à 2.2.7
Splunk Splunk Enterprise Splunk Enterprise versions 9.4.x antérieures à 9.4.14
Splunk N/A FireAMP versions 2.1.x antérieures à 2.1.15
Splunk N/A Zoom app pour Splunk SOAR versions antérieures à 3.2.2
Splunk N/A Phantom app pour Splunk SOAR versions antérieures à 3.8.5
Splunk Splunk Splunk On-Call (VictorOps) versions antérieures à 1.0.43
Splunk Splunk Splunk Attack Analyzer Connector pour Splunk SOAR versions 2.2.x antérieures à 2.2.1
Splunk Splunk Splunk MCP Server app versions antérieures à 1.2.1
Splunk Splunk Enterprise Splunk Enterprise versions 10.4.x antérieures à 10.4.2
Splunk N/A AD LDAP app pour Splunk SOAR versions antérieures à 2.3.8
Splunk Splunk Enterprise Splunk Enterprise versions 10.2.x antérieures à 10.2.6
Splunk Universal Forwarder Splunk Universal Forwarder versions 9.4.x antérieures à 9.4.14
Splunk Splunk AI Toolkit Splunk AI Toolkit versions antérieures à 6.0.1
Splunk Universal Forwarder Splunk Universal Forwarder versions 10.2.x antérieures à 10.2.6
Splunk N/A Cisco Talos Intelligence pour Enterprise Security Cloud versions antérieures à 1.0.3
Splunk Splunk Enterprise Splunk Enterprise versions 10.0.x antérieures à 10.0.9
Splunk N/A CrowdStrike OAuth API app pour Splunk SOAR versions antérieures à 5.1.3
Splunk Enterprise Security Splunk Enterprise Security versions antérieures à 8.6.1
Splunk N/A Nmap Scanner versions 3.0.x antérieures à 3.0.15
Splunk N/A RSA SecurID Authentication Manager app pour Splunk SOAR versions antérieures à 1.0.5
Splunk N/A Cisco Secure Malware Analytics app pour Splunk SOAR versions antérieures à 2.4.5
Splunk N/A Cisco Webex app pour Splunk SOAR versions antérieures à 2.2.1
Splunk Universal Forwarder Splunk Universal Forwarder versions 10.4.x antérieures à 10.4.2
References

Show details on source website


{
  "$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
  "affected_systems": [
    {
      "description": "MS Graph pour Active Directory app pour Splunk SOAR versions ant\u00e9rieures \u00e0 1.5.2",
      "product": {
        "name": "N/A",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Venafi app pour Splunk SOAR versions ant\u00e9rieures \u00e0 2.1.4",
      "product": {
        "name": "N/A",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk Universal Forwarder versions 10.0.x ant\u00e9rieures \u00e0 10.0.9",
      "product": {
        "name": "Universal Forwarder",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "AWS IAM app pour Splunk SOAR versions ant\u00e9rieures \u00e0 2.1.9",
      "product": {
        "name": "N/A",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Azure AD Graph app pour Splunk SOAR versions ant\u00e9rieures \u00e0 2.5.3",
      "product": {
        "name": "N/A",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk SOAR versions ant\u00e9rieures \u00e0 8.6.0",
      "product": {
        "name": "SOAR",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk Connect pour Kafka versions ant\u00e9rieures \u00e0 2.2.7",
      "product": {
        "name": "Splunk",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk Enterprise versions 9.4.x ant\u00e9rieures \u00e0 9.4.14",
      "product": {
        "name": "Splunk Enterprise",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "FireAMP versions 2.1.x ant\u00e9rieures \u00e0 2.1.15",
      "product": {
        "name": "N/A",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Zoom app pour Splunk SOAR versions ant\u00e9rieures \u00e0 3.2.2",
      "product": {
        "name": "N/A",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Phantom app pour Splunk SOAR versions ant\u00e9rieures \u00e0 3.8.5",
      "product": {
        "name": "N/A",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk On-Call (VictorOps) versions ant\u00e9rieures \u00e0 1.0.43",
      "product": {
        "name": "Splunk",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk Attack Analyzer Connector pour Splunk SOAR versions 2.2.x ant\u00e9rieures \u00e0 2.2.1",
      "product": {
        "name": "Splunk",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk MCP Server app versions ant\u00e9rieures \u00e0 1.2.1",
      "product": {
        "name": "Splunk",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk Enterprise versions 10.4.x ant\u00e9rieures \u00e0 10.4.2",
      "product": {
        "name": "Splunk Enterprise",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "AD LDAP app pour Splunk SOAR versions ant\u00e9rieures \u00e0 2.3.8",
      "product": {
        "name": "N/A",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk Enterprise versions 10.2.x ant\u00e9rieures \u00e0 10.2.6",
      "product": {
        "name": "Splunk Enterprise",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk Universal Forwarder versions 9.4.x ant\u00e9rieures \u00e0 9.4.14",
      "product": {
        "name": "Universal Forwarder",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk AI Toolkit versions ant\u00e9rieures \u00e0 6.0.1",
      "product": {
        "name": "Splunk AI Toolkit",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk Universal Forwarder versions 10.2.x ant\u00e9rieures \u00e0 10.2.6",
      "product": {
        "name": "Universal Forwarder",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Cisco Talos Intelligence pour Enterprise Security Cloud versions ant\u00e9rieures \u00e0 1.0.3",
      "product": {
        "name": "N/A",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk Enterprise versions 10.0.x ant\u00e9rieures \u00e0 10.0.9",
      "product": {
        "name": "Splunk Enterprise",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "CrowdStrike OAuth API app pour Splunk SOAR versions ant\u00e9rieures \u00e0 5.1.3",
      "product": {
        "name": "N/A",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk Enterprise Security versions ant\u00e9rieures \u00e0 8.6.1",
      "product": {
        "name": "Enterprise Security",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Nmap Scanner versions 3.0.x ant\u00e9rieures \u00e0 3.0.15",
      "product": {
        "name": "N/A",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "RSA SecurID Authentication Manager app pour Splunk SOAR versions ant\u00e9rieures \u00e0 1.0.5",
      "product": {
        "name": "N/A",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Cisco Secure Malware Analytics app pour Splunk SOAR versions ant\u00e9rieures \u00e0 2.4.5",
      "product": {
        "name": "N/A",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Cisco Webex app pour Splunk SOAR versions ant\u00e9rieures \u00e0 2.2.1",
      "product": {
        "name": "N/A",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk Universal Forwarder versions 10.4.x ant\u00e9rieures \u00e0 10.4.2",
      "product": {
        "name": "Universal Forwarder",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    }
  ],
  "affected_systems_content": "",
  "content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
  "cves": [
    {
      "name": "CVE-2026-26007",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-26007"
    },
    {
      "name": "CVE-2025-13473",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-13473"
    },
    {
      "name": "CVE-2026-76349",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76349"
    },
    {
      "name": "CVE-2026-32597",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-32597"
    },
    {
      "name": "CVE-2026-31958",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-31958"
    },
    {
      "name": "CVE-2026-76329",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76329"
    },
    {
      "name": "CVE-2026-6474",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-6474"
    },
    {
      "name": "CVE-2026-40087",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-40087"
    },
    {
      "name": "CVE-2026-6472",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-6472"
    },
    {
      "name": "CVE-2026-34180",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-34180"
    },
    {
      "name": "CVE-2026-76345",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76345"
    },
    {
      "name": "CVE-2025-67726",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-67726"
    },
    {
      "name": "CVE-2026-76394",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76394"
    },
    {
      "name": "CVE-2026-76383",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76383"
    },
    {
      "name": "CVE-2026-33186",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-33186"
    },
    {
      "name": "CVE-2026-76401",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76401"
    },
    {
      "name": "CVE-2026-42766",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-42766"
    },
    {
      "name": "CVE-2026-76257",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76257"
    },
    {
      "name": "CVE-2026-32647",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-32647"
    },
    {
      "name": "CVE-2026-76324",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76324"
    },
    {
      "name": "CVE-2026-9076",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9076"
    },
    {
      "name": "CVE-2026-76335",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76335"
    },
    {
      "name": "CVE-2026-76360",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76360"
    },
    {
      "name": "CVE-2026-76393",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76393"
    },
    {
      "name": "CVE-2026-76331",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76331"
    },
    {
      "name": "CVE-2026-76356",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76356"
    },
    {
      "name": "CVE-2026-6479",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-6479"
    },
    {
      "name": "CVE-2026-76262",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76262"
    },
    {
      "name": "CVE-2026-1642",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-1642"
    },
    {
      "name": "CVE-2026-27651",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-27651"
    },
    {
      "name": "CVE-2026-27654",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-27654"
    },
    {
      "name": "CVE-2026-76358",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76358"
    },
    {
      "name": "CVE-2026-1285",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-1285"
    },
    {
      "name": "CVE-2026-76320",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76320"
    },
    {
      "name": "CVE-2026-27959",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-27959"
    },
    {
      "name": "CVE-2026-76342",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76342"
    },
    {
      "name": "CVE-2026-6429",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-6429"
    },
    {
      "name": "CVE-2026-40701",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-40701"
    },
    {
      "name": "CVE-2026-76402",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76402"
    },
    {
      "name": "CVE-2026-2391",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-2391"
    },
    {
      "name": "CVE-2026-76395",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76395"
    },
    {
      "name": "CVE-2026-24737",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-24737"
    },
    {
      "name": "CVE-2026-27143",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-27143"
    },
    {
      "name": "CVE-2026-76369",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76369"
    },
    {
      "name": "CVE-2026-76386",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76386"
    },
    {
      "name": "CVE-2026-76344",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76344"
    },
    {
      "name": "CVE-2026-2006",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-2006"
    },
    {
      "name": "CVE-2026-42946",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-42946"
    },
    {
      "name": "CVE-2026-6637",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-6637"
    },
    {
      "name": "CVE-2026-21226",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21226"
    },
    {
      "name": "CVE-2024-35255",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-35255"
    },
    {
      "name": "CVE-2026-76312",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76312"
    },
    {
      "name": "CVE-2026-35536",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-35536"
    },
    {
      "name": "CVE-2026-76403",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76403"
    },
    {
      "name": "CVE-2026-28755",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-28755"
    },
    {
      "name": "CVE-2026-6473",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-6473"
    },
    {
      "name": "CVE-2026-76371",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76371"
    },
    {
      "name": "CVE-2026-76313",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76313"
    },
    {
      "name": "CVE-2026-42215",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-42215"
    },
    {
      "name": "CVE-2026-2005",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-2005"
    },
    {
      "name": "CVE-2026-76327",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76327"
    },
    {
      "name": "CVE-2026-76381",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76381"
    },
    {
      "name": "CVE-2026-7383",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-7383"
    },
    {
      "name": "CVE-2026-25674",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-25674"
    },
    {
      "name": "CVE-2026-27144",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-27144"
    },
    {
      "name": "CVE-2026-76385",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76385"
    },
    {
      "name": "CVE-2026-32283",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-32283"
    },
    {
      "name": "CVE-2026-76364",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76364"
    },
    {
      "name": "CVE-2026-76388",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76388"
    },
    {
      "name": "CVE-2026-42934",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-42934"
    },
    {
      "name": "CVE-2026-24043",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-24043"
    },
    {
      "name": "CVE-2026-76261",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76261"
    },
    {
      "name": "CVE-2026-45409",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-45409"
    },
    {
      "name": "CVE-2025-53859",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-53859"
    },
    {
      "name": "CVE-2026-76378",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76378"
    },
    {
      "name": "CVE-2026-21860",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21860"
    },
    {
      "name": "CVE-2026-4800",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-4800"
    },
    {
      "name": "CVE-2026-76354",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76354"
    },
    {
      "name": "CVE-2026-76377",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76377"
    },
    {
      "name": "CVE-2026-39883",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-39883"
    },
    {
      "name": "CVE-2026-76321",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76321"
    },
    {
      "name": "CVE-2026-0540",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-0540"
    },
    {
      "name": "CVE-2026-32281",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-32281"
    },
    {
      "name": "CVE-2025-6545",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-6545"
    },
    {
      "name": "CVE-2026-76390",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76390"
    },
    {
      "name": "CVE-2026-28389",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-28389"
    },
    {
      "name": "CVE-2026-76255",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76255"
    },
    {
      "name": "CVE-2026-33671",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-33671"
    },
    {
      "name": "CVE-2026-34515",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-34515"
    },
    {
      "name": "CVE-2026-33532",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-33532"
    },
    {
      "name": "CVE-2026-76380",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76380"
    },
    {
      "name": "CVE-2026-34519",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-34519"
    },
    {
      "name": "CVE-2026-76404",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76404"
    },
    {
      "name": "CVE-2026-76343",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76343"
    },
    {
      "name": "CVE-2026-76254",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76254"
    },
    {
      "name": "CVE-2026-30922",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-30922"
    },
    {
      "name": "CVE-2026-76397",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76397"
    },
    {
      "name": "CVE-2026-76337",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76337"
    },
    {
      "name": "CVE-2026-76326",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76326"
    },
    {
      "name": "CVE-2026-33750",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-33750"
    },
    {
      "name": "CVE-2026-76328",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76328"
    },
    {
      "name": "CVE-2026-76359",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76359"
    },
    {
      "name": "CVE-2026-76365",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76365"
    },
    {
      "name": "CVE-2026-1207",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-1207"
    },
    {
      "name": "CVE-2026-34986",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-34986"
    },
    {
      "name": "CVE-2026-33228",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-33228"
    },
    {
      "name": "CVE-2026-76405",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76405"
    },
    {
      "name": "CVE-2026-76253",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76253"
    },
    {
      "name": "CVE-2026-76314",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76314"
    },
    {
      "name": "CVE-2026-76315",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76315"
    },
    {
      "name": "CVE-2026-6638",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-6638"
    },
    {
      "name": "CVE-2026-76347",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76347"
    },
    {
      "name": "CVE-2026-34518",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-34518"
    },
    {
      "name": "CVE-2026-76382",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76382"
    },
    {
      "name": "CVE-2026-76332",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76332"
    },
    {
      "name": "CVE-2026-76379",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76379"
    },
    {
      "name": "CVE-2026-76376",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76376"
    },
    {
      "name": "CVE-2026-76252",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76252"
    },
    {
      "name": "CVE-2026-27199",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-27199"
    },
    {
      "name": "CVE-2026-76336",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76336"
    },
    {
      "name": "CVE-2026-76391",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76391"
    },
    {
      "name": "CVE-2026-22702",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-22702"
    },
    {
      "name": "CVE-2026-45447",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-45447"
    },
    {
      "name": "CVE-2026-25679",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-25679"
    },
    {
      "name": "CVE-2025-14017",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-14017"
    },
    {
      "name": "CVE-2026-76384",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76384"
    },
    {
      "name": "CVE-2026-34525",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-34525"
    },
    {
      "name": "CVE-2026-76351",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76351"
    },
    {
      "name": "CVE-2026-76256",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76256"
    },
    {
      "name": "CVE-2026-28388",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-28388"
    },
    {
      "name": "CVE-2026-76309",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76309"
    },
    {
      "name": "CVE-2026-6478",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-6478"
    },
    {
      "name": "CVE-2026-34601",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-34601"
    },
    {
      "name": "CVE-2026-24133",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-24133"
    },
    {
      "name": "CVE-2026-1312",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-1312"
    },
    {
      "name": "CVE-2026-76367",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76367"
    },
    {
      "name": "CVE-2025-14550",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-14550"
    },
    {
      "name": "CVE-2025-66221",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-66221"
    },
    {
      "name": "CVE-2026-76322",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76322"
    },
    {
      "name": "CVE-2026-76319",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76319"
    },
    {
      "name": "CVE-2026-76318",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76318"
    },
    {
      "name": "CVE-2026-2950",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-2950"
    },
    {
      "name": "CVE-2026-76258",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76258"
    },
    {
      "name": "CVE-2026-42284",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-42284"
    },
    {
      "name": "CVE-2026-6475",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-6475"
    },
    {
      "name": "CVE-2026-76370",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76370"
    },
    {
      "name": "CVE-2026-76363",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76363"
    },
    {
      "name": "CVE-2026-32280",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-32280"
    },
    {
      "name": "CVE-2026-76361",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76361"
    },
    {
      "name": "CVE-2026-76316",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76316"
    },
    {
      "name": "CVE-2026-76330",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76330"
    },
    {
      "name": "CVE-2026-76260",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76260"
    },
    {
      "name": "CVE-2025-69873",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-69873"
    },
    {
      "name": "CVE-2026-44244",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-44244"
    },
    {
      "name": "CVE-2026-25940",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-25940"
    },
    {
      "name": "CVE-2026-24040",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-24040"
    },
    {
      "name": "CVE-2026-76346",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76346"
    },
    {
      "name": "CVE-2026-76373",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76373"
    },
    {
      "name": "CVE-2026-76400",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76400"
    },
    {
      "name": "CVE-2026-76372",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76372"
    },
    {
      "name": "CVE-2026-29181",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-29181"
    },
    {
      "name": "CVE-2026-25755",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-25755"
    },
    {
      "name": "CVE-2026-76334",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76334"
    },
    {
      "name": "CVE-2025-15599",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-15599"
    },
    {
      "name": "CVE-2026-28390",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-28390"
    },
    {
      "name": "CVE-2026-6477",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-6477"
    },
    {
      "name": "CVE-2026-76340",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76340"
    },
    {
      "name": "CVE-2026-76341",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76341"
    },
    {
      "name": "CVE-2026-33672",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-33672"
    },
    {
      "name": "CVE-2026-76396",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76396"
    },
    {
      "name": "CVE-2026-76323",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76323"
    },
    {
      "name": "CVE-2026-76368",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76368"
    },
    {
      "name": "CVE-2026-76259",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76259"
    },
    {
      "name": "CVE-2026-76355",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76355"
    },
    {
      "name": "CVE-2026-76375",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76375"
    },
    {
      "name": "CVE-2026-76325",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76325"
    },
    {
      "name": "CVE-2026-76399",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76399"
    },
    {
      "name": "CVE-2026-76392",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76392"
    },
    {
      "name": "CVE-2026-34516",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-34516"
    },
    {
      "name": "CVE-2026-27140",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-27140"
    },
    {
      "name": "CVE-2026-31789",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-31789"
    },
    {
      "name": "CVE-2026-34517",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-34517"
    },
    {
      "name": "CVE-2026-25535",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-25535"
    },
    {
      "name": "CVE-2026-42945",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-42945"
    },
    {
      "name": "CVE-2026-76362",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76362"
    },
    {
      "name": "CVE-2026-76389",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76389"
    },
    {
      "name": "CVE-2026-31938",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-31938"
    },
    {
      "name": "CVE-2026-27784",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-27784"
    },
    {
      "name": "CVE-2026-76387",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76387"
    },
    {
      "name": "CVE-2026-6276",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-6276"
    },
    {
      "name": "CVE-2026-76338",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76338"
    },
    {
      "name": "CVE-2026-28753",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-28753"
    },
    {
      "name": "CVE-2026-76374",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76374"
    },
    {
      "name": "CVE-2026-33810",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-33810"
    },
    {
      "name": "CVE-2026-34513",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-34513"
    },
    {
      "name": "CVE-2026-9256",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9256"
    },
    {
      "name": "CVE-2026-34514",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-34514"
    },
    {
      "name": "CVE-2026-28277",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-28277"
    },
    {
      "name": "CVE-2026-26996",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-26996"
    },
    {
      "name": "CVE-2026-1287",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-1287"
    },
    {
      "name": "CVE-2026-76339",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76339"
    },
    {
      "name": "CVE-2026-76348",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76348"
    },
    {
      "name": "CVE-2025-14819",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-14819"
    },
    {
      "name": "CVE-2026-76353",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76353"
    },
    {
      "name": "CVE-2025-67724",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-67724"
    },
    {
      "name": "CVE-2026-41066",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-41066"
    },
    {
      "name": "CVE-2026-76350",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76350"
    },
    {
      "name": "CVE-2026-34520",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-34520"
    },
    {
      "name": "CVE-2026-28684",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-28684"
    },
    {
      "name": "CVE-2026-32141",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-32141"
    },
    {
      "name": "CVE-2026-76357",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76357"
    },
    {
      "name": "CVE-2026-2004",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-2004"
    },
    {
      "name": "CVE-2026-76317",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76317"
    },
    {
      "name": "CVE-2026-31898",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-31898"
    },
    {
      "name": "CVE-2026-24001",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-24001"
    },
    {
      "name": "CVE-2026-76310",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76310"
    },
    {
      "name": "CVE-2026-76352",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76352"
    },
    {
      "name": "CVE-2026-25673",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-25673"
    },
    {
      "name": "CVE-2026-7168",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-7168"
    },
    {
      "name": "CVE-2025-6547",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-6547"
    },
    {
      "name": "CVE-2026-76398",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76398"
    },
    {
      "name": "CVE-2025-67725",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-67725"
    },
    {
      "name": "CVE-2026-29063",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-29063"
    },
    {
      "name": "CVE-2026-76366",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76366"
    },
    {
      "name": "CVE-2025-68428",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-68428"
    },
    {
      "name": "CVE-2026-22815",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-22815"
    },
    {
      "name": "CVE-2026-76311",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76311"
    },
    {
      "name": "CVE-2026-76263",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76263"
    },
    {
      "name": "CVE-2026-76251",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76251"
    },
    {
      "name": "CVE-2025-13465",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-13465"
    },
    {
      "name": "CVE-2026-40460",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-40460"
    },
    {
      "name": "CVE-2026-76333",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76333"
    },
    {
      "name": "CVE-2026-44243",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-44243"
    },
    {
      "name": "CVE-2026-31790",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-31790"
    },
    {
      "name": "CVE-2026-2739",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-2739"
    }
  ],
  "initial_release_date": "2026-08-20T00:00:00",
  "last_revision_date": "2026-08-20T00:00:00",
  "links": [],
  "reference": "CERTFR-2026-AVI-1056",
  "revisions": [
    {
      "description": "Version initiale",
      "revision_date": "2026-08-20T00:00:00.000000"
    }
  ],
  "risks": [
    {
      "description": "Injection de code indirecte \u00e0 distance (XSS)"
    },
    {
      "description": "Injection de requ\u00eates ill\u00e9gitimes par rebond (CSRF)"
    },
    {
      "description": "Ex\u00e9cution de code arbitraire \u00e0 distance"
    },
    {
      "description": "Atteinte \u00e0 l\u0027int\u00e9grit\u00e9 des donn\u00e9es"
    },
    {
      "description": "Injection SQL (SQLi)"
    },
    {
      "description": "Non sp\u00e9cifi\u00e9 par l\u0027\u00e9diteur"
    },
    {
      "description": "D\u00e9ni de service"
    },
    {
      "description": "Falsification de requ\u00eates c\u00f4t\u00e9 serveur (SSRF)"
    },
    {
      "description": "Contournement de la politique de s\u00e9curit\u00e9"
    },
    {
      "description": "Atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es"
    },
    {
      "description": "\u00c9l\u00e9vation de privil\u00e8ges"
    }
  ],
  "summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans les produits Splunk. Certaines d\u0027entre elles permettent \u00e0 un attaquant de provoquer une ex\u00e9cution de code arbitraire \u00e0 distance, une \u00e9l\u00e9vation de privil\u00e8ges et une atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es.",
  "title": "Multiples vuln\u00e9rabilit\u00e9s dans les produits Splunk",
  "vendor_advisories": [
    {
      "published_at": "2026-08-19",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0807",
      "url": "https://advisory.splunk.com/advisories/SVD-2026-0807"
    },
    {
      "published_at": "2026-08-19",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0805",
      "url": "https://advisory.splunk.com/advisories/SVD-2026-0805"
    },
    {
      "published_at": "2026-08-19",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0803",
      "url": "https://advisory.splunk.com/advisories/SVD-2026-0803"
    },
    {
      "published_at": "2026-08-19",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0802",
      "url": "https://advisory.splunk.com/advisories/SVD-2026-0802"
    },
    {
      "published_at": "2026-08-19",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0801",
      "url": "https://advisory.splunk.com/advisories/SVD-2026-0801"
    },
    {
      "published_at": "2026-08-19",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0808",
      "url": "https://advisory.splunk.com/advisories/SVD-2026-0808"
    },
    {
      "published_at": "2026-08-19",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0806",
      "url": "https://advisory.splunk.com/advisories/SVD-2026-0806"
    },
    {
      "published_at": "2026-08-19",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0804",
      "url": "https://advisory.splunk.com/advisories/SVD-2026-0804"
    }
  ]
}

CERTFR-2026-AVI-0774
Vulnerability from certfr_avis

De multiples vulnérabilités ont été découvertes dans Splunk AI Toolkit. Elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance et un contournement de la politique de sécurité.

Solutions

Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).

Impacted products
Vendor Product Description
Splunk Splunk Splunk AI Toolkit versions antérieures à 5.7.4
References

Show details on source website


{
  "$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
  "affected_systems": [
    {
      "description": "Splunk AI Toolkit versions ant\u00e9rieures \u00e0 5.7.4",
      "product": {
        "name": "Splunk",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    }
  ],
  "affected_systems_content": "",
  "content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
  "cves": [
    {
      "name": "CVE-2026-20265",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-20265"
    },
    {
      "name": "CVE-2026-20266",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-20266"
    }
  ],
  "initial_release_date": "2026-06-18T00:00:00",
  "last_revision_date": "2026-06-18T00:00:00",
  "links": [],
  "reference": "CERTFR-2026-AVI-0774",
  "revisions": [
    {
      "description": "Version initiale",
      "revision_date": "2026-06-18T00:00:00.000000"
    }
  ],
  "risks": [
    {
      "description": "Ex\u00e9cution de code arbitraire \u00e0 distance"
    },
    {
      "description": "Contournement de la politique de s\u00e9curit\u00e9"
    }
  ],
  "summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans Splunk AI Toolkit. Elles permettent \u00e0 un attaquant de provoquer une ex\u00e9cution de code arbitraire \u00e0 distance et un contournement de la politique de s\u00e9curit\u00e9.",
  "title": "Multiples vuln\u00e9rabilit\u00e9s dans Splunk AI Toolkit",
  "vendor_advisories": [
    {
      "published_at": "2026-06-17",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0613",
      "url": "https://advisory.splunk.com/advisories/SVD-2026-0613"
    },
    {
      "published_at": "2026-06-17",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0614",
      "url": "https://advisory.splunk.com/advisories/SVD-2026-0614"
    }
  ]
}

CERTFR-2026-AVI-0627
Vulnerability from certfr_avis

De multiples vulnérabilités ont été découvertes dans les produits Splunk. Certaines d'entre elles permettent à un attaquant de provoquer un déni de service à distance, une atteinte à la confidentialité des données et un problème de sécurité non spécifié par l'éditeur.

Solutions

Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).

Impacted products
Vendor Product Description
Splunk Splunk Enterprise Splunk Enterprise versions 10.2.x antérieures à 10.2.3
Splunk N/A Splunk AI Toolkit versions 5.7.x antérieures à 5.7.3
Splunk Splunk Cloud Platform Splunk Cloud Platform versions 9.3.2411 antérieures à 9.3.2411.129
Splunk Splunk Cloud Platform Splunk Cloud Platform versions 10.3.2512 antérieures à 10.3.2512.9
Splunk Splunk image Docker Splunk versions 10.2.x antérieures à 10.2.2
Splunk Splunk Cloud Platform Splunk Cloud Platform versions 10.4.2603 antérieures à 10.4.2603.1
Splunk Splunk AppDynamics Database Agent Splunk AppDynamics Database Agent versions antérieures à 26.4.0
Splunk Splunk image Docker Splunk versions 9.4.x antérieures à 9.4.10
Splunk Splunk User Behavior Analytics (UBA) Splunk User Behavior Analytics versions 5.4.x antérieures à 5.4.5
Splunk Splunk AppDynamics Private Synthetic Agent Splunk AppDynamics Private Synthetic Agent versions antérieures à 26.4.0
Splunk Splunk AppDynamics Analytics Agent Splunk AppDynamics Analytics Agent versions antérieures à 26.4.0
Splunk N/A Splunk AppDynamics Cluster Agent versions antérieures à 26.4.0
Splunk Splunk AppDynamics Machine Agent Splunk AppDynamics Machine Agent versions antérieures à 26.4.0
Splunk Splunk Cloud Platform Splunk Cloud Platform versions 10.2.2510 antérieures à 10.2.2510.11
Splunk N/A Splunk AppDynamics Python Agent versions antérieures à 26.4.1
Splunk Splunk image Docker Splunk versions 10.0.x antérieures à 10.0.5
Splunk N/A Splunk Add-on for Tomcat versions 3.3.x antérieures à 3.3.1
Splunk Splunk Cloud Platform Splunk Cloud Platform versions 10.1.2507 antérieures à 10.1.2507.21
Splunk Splunk Enterprise Splunk Enterprise versions 10.0.x antérieures à 10.0.6
Splunk N/A Splunk AppDynamics Apache Web Server Agent versions 25.11.x antérieures à 25.11.1
Splunk Splunk Enterprise Splunk Enterprise versions 9.4.x antérieures à 9.4.11
Splunk Splunk image Docker Splunk versions 9.3.x antérieures à 9.3.11
Splunk Splunk Cloud Platform Splunk Cloud Platform versions 10.0.2503 antérieures à 10.0.2503.13
Splunk Universal Forwarder Splunk Universal Forwarder versions 9.4.x antérieures à 9.4.11
Splunk Splunk Enterprise Splunk Enterprise versions 9.3.x antérieures à 9.3.12
Splunk Splunk AppDynamics Java Agent Splunk AppDynamics Java Agent versions antérieures à 26.4.0
References

Show details on source website


{
  "$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
  "affected_systems": [
    {
      "description": "Splunk Enterprise versions 10.2.x ant\u00e9rieures \u00e0 10.2.3",
      "product": {
        "name": "Splunk Enterprise",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk AI Toolkit versions 5.7.x ant\u00e9rieures \u00e0 5.7.3",
      "product": {
        "name": "N/A",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk Cloud Platform versions 9.3.2411 ant\u00e9rieures \u00e0 9.3.2411.129",
      "product": {
        "name": "Splunk Cloud Platform",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk Cloud Platform versions 10.3.2512 ant\u00e9rieures \u00e0 10.3.2512.9",
      "product": {
        "name": "Splunk Cloud Platform",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "image Docker Splunk versions 10.2.x ant\u00e9rieures \u00e0 10.2.2",
      "product": {
        "name": "Splunk",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk Cloud Platform versions 10.4.2603 ant\u00e9rieures \u00e0 10.4.2603.1",
      "product": {
        "name": "Splunk Cloud Platform",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk AppDynamics Database Agent versions ant\u00e9rieures \u00e0 26.4.0",
      "product": {
        "name": "Splunk AppDynamics Database Agent",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "image Docker Splunk versions 9.4.x ant\u00e9rieures \u00e0 9.4.10",
      "product": {
        "name": "Splunk",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk User Behavior Analytics versions 5.4.x ant\u00e9rieures \u00e0 5.4.5",
      "product": {
        "name": "Splunk User Behavior Analytics (UBA)",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk AppDynamics Private Synthetic Agent versions ant\u00e9rieures \u00e0 26.4.0",
      "product": {
        "name": "Splunk AppDynamics Private Synthetic Agent",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk AppDynamics Analytics Agent versions ant\u00e9rieures \u00e0 26.4.0",
      "product": {
        "name": "Splunk AppDynamics Analytics Agent",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk AppDynamics Cluster Agent versions ant\u00e9rieures \u00e0 26.4.0",
      "product": {
        "name": "N/A",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk AppDynamics Machine Agent versions ant\u00e9rieures \u00e0 26.4.0",
      "product": {
        "name": "Splunk AppDynamics Machine Agent",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk Cloud Platform versions 10.2.2510 ant\u00e9rieures \u00e0 10.2.2510.11",
      "product": {
        "name": "Splunk Cloud Platform",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk AppDynamics Python Agent versions ant\u00e9rieures \u00e0 26.4.1",
      "product": {
        "name": "N/A",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "image Docker Splunk versions 10.0.x ant\u00e9rieures \u00e0 10.0.5",
      "product": {
        "name": "Splunk",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk Add-on for Tomcat versions 3.3.x ant\u00e9rieures \u00e0 3.3.1",
      "product": {
        "name": "N/A",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk Cloud Platform versions 10.1.2507 ant\u00e9rieures \u00e0 10.1.2507.21",
      "product": {
        "name": "Splunk Cloud Platform",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk Enterprise versions 10.0.x ant\u00e9rieures \u00e0 10.0.6",
      "product": {
        "name": "Splunk Enterprise",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk AppDynamics Apache Web Server Agent versions 25.11.x ant\u00e9rieures \u00e0 25.11.1",
      "product": {
        "name": "N/A",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk Enterprise versions 9.4.x ant\u00e9rieures \u00e0 9.4.11",
      "product": {
        "name": "Splunk Enterprise",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "image Docker Splunk versions 9.3.x ant\u00e9rieures \u00e0 9.3.11",
      "product": {
        "name": "Splunk",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk Cloud Platform versions 10.0.2503 ant\u00e9rieures \u00e0 10.0.2503.13",
      "product": {
        "name": "Splunk Cloud Platform",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk Universal Forwarder versions 9.4.x ant\u00e9rieures \u00e0 9.4.11",
      "product": {
        "name": "Universal Forwarder",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk Enterprise versions 9.3.x ant\u00e9rieures \u00e0 9.3.12",
      "product": {
        "name": "Splunk Enterprise",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk AppDynamics Java Agent versions ant\u00e9rieures \u00e0 26.4.0",
      "product": {
        "name": "Splunk AppDynamics Java Agent",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    }
  ],
  "affected_systems_content": "",
  "content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
  "cves": [
    {
      "name": "CVE-2017-7525",
      "url": "https://www.cve.org/CVERecord?id=CVE-2017-7525"
    },
    {
      "name": "CVE-2018-7489",
      "url": "https://www.cve.org/CVERecord?id=CVE-2018-7489"
    },
    {
      "name": "CVE-2017-15095",
      "url": "https://www.cve.org/CVERecord?id=CVE-2017-15095"
    },
    {
      "name": "CVE-2017-17485",
      "url": "https://www.cve.org/CVERecord?id=CVE-2017-17485"
    },
    {
      "name": "CVE-2018-5968",
      "url": "https://www.cve.org/CVERecord?id=CVE-2018-5968"
    },
    {
      "name": "CVE-2018-14721",
      "url": "https://www.cve.org/CVERecord?id=CVE-2018-14721"
    },
    {
      "name": "CVE-2019-17267",
      "url": "https://www.cve.org/CVERecord?id=CVE-2019-17267"
    },
    {
      "name": "CVE-2019-16943",
      "url": "https://www.cve.org/CVERecord?id=CVE-2019-16943"
    },
    {
      "name": "CVE-2020-14062",
      "url": "https://www.cve.org/CVERecord?id=CVE-2020-14062"
    },
    {
      "name": "CVE-2020-14195",
      "url": "https://www.cve.org/CVERecord?id=CVE-2020-14195"
    },
    {
      "name": "CVE-2020-1971",
      "url": "https://www.cve.org/CVERecord?id=CVE-2020-1971"
    },
    {
      "name": "CVE-2020-36183",
      "url": "https://www.cve.org/CVERecord?id=CVE-2020-36183"
    },
    {
      "name": "CVE-2020-25649",
      "url": "https://www.cve.org/CVERecord?id=CVE-2020-25649"
    },
    {
      "name": "CVE-2021-20190",
      "url": "https://www.cve.org/CVERecord?id=CVE-2021-20190"
    },
    {
      "name": "CVE-2020-36187",
      "url": "https://www.cve.org/CVERecord?id=CVE-2020-36187"
    },
    {
      "name": "CVE-2020-36188",
      "url": "https://www.cve.org/CVERecord?id=CVE-2020-36188"
    },
    {
      "name": "CVE-2020-36186",
      "url": "https://www.cve.org/CVERecord?id=CVE-2020-36186"
    },
    {
      "name": "CVE-2020-36189",
      "url": "https://www.cve.org/CVERecord?id=CVE-2020-36189"
    },
    {
      "name": "CVE-2020-36185",
      "url": "https://www.cve.org/CVERecord?id=CVE-2020-36185"
    },
    {
      "name": "CVE-2020-36179",
      "url": "https://www.cve.org/CVERecord?id=CVE-2020-36179"
    },
    {
      "name": "CVE-2020-36180",
      "url": "https://www.cve.org/CVERecord?id=CVE-2020-36180"
    },
    {
      "name": "CVE-2020-36182",
      "url": "https://www.cve.org/CVERecord?id=CVE-2020-36182"
    },
    {
      "name": "CVE-2020-36181",
      "url": "https://www.cve.org/CVERecord?id=CVE-2020-36181"
    },
    {
      "name": "CVE-2020-36184",
      "url": "https://www.cve.org/CVERecord?id=CVE-2020-36184"
    },
    {
      "name": "CVE-2021-23358",
      "url": "https://www.cve.org/CVERecord?id=CVE-2021-23358"
    },
    {
      "name": "CVE-2020-36242",
      "url": "https://www.cve.org/CVERecord?id=CVE-2020-36242"
    },
    {
      "name": "CVE-2021-35517",
      "url": "https://www.cve.org/CVERecord?id=CVE-2021-35517"
    },
    {
      "name": "CVE-2021-35516",
      "url": "https://www.cve.org/CVERecord?id=CVE-2021-35516"
    },
    {
      "name": "CVE-2021-35515",
      "url": "https://www.cve.org/CVERecord?id=CVE-2021-35515"
    },
    {
      "name": "CVE-2021-36090",
      "url": "https://www.cve.org/CVERecord?id=CVE-2021-36090"
    },
    {
      "name": "CVE-2021-28165",
      "url": "https://www.cve.org/CVERecord?id=CVE-2021-28165"
    },
    {
      "name": "CVE-2020-14060",
      "url": "https://www.cve.org/CVERecord?id=CVE-2020-14060"
    },
    {
      "name": "CVE-2019-10172",
      "url": "https://www.cve.org/CVERecord?id=CVE-2019-10172"
    },
    {
      "name": "CVE-2020-11619",
      "url": "https://www.cve.org/CVERecord?id=CVE-2020-11619"
    },
    {
      "name": "CVE-2020-24750",
      "url": "https://www.cve.org/CVERecord?id=CVE-2020-24750"
    },
    {
      "name": "CVE-2020-10673",
      "url": "https://www.cve.org/CVERecord?id=CVE-2020-10673"
    },
    {
      "name": "CVE-2020-14061",
      "url": "https://www.cve.org/CVERecord?id=CVE-2020-14061"
    },
    {
      "name": "CVE-2020-24616",
      "url": "https://www.cve.org/CVERecord?id=CVE-2020-24616"
    },
    {
      "name": "CVE-2020-11620",
      "url": "https://www.cve.org/CVERecord?id=CVE-2020-11620"
    },
    {
      "name": "CVE-2019-14892",
      "url": "https://www.cve.org/CVERecord?id=CVE-2019-14892"
    },
    {
      "name": "CVE-2019-14893",
      "url": "https://www.cve.org/CVERecord?id=CVE-2019-14893"
    },
    {
      "name": "CVE-2020-10672",
      "url": "https://www.cve.org/CVERecord?id=CVE-2020-10672"
    },
    {
      "name": "CVE-2021-37137",
      "url": "https://www.cve.org/CVERecord?id=CVE-2021-37137"
    },
    {
      "name": "CVE-2021-37136",
      "url": "https://www.cve.org/CVERecord?id=CVE-2021-37136"
    },
    {
      "name": "CVE-2020-13949",
      "url": "https://www.cve.org/CVERecord?id=CVE-2020-13949"
    },
    {
      "name": "CVE-2022-3996",
      "url": "https://www.cve.org/CVERecord?id=CVE-2022-3996"
    },
    {
      "name": "CVE-2019-20445",
      "url": "https://www.cve.org/CVERecord?id=CVE-2019-20445"
    },
    {
      "name": "CVE-2019-16869",
      "url": "https://www.cve.org/CVERecord?id=CVE-2019-16869"
    },
    {
      "name": "CVE-2019-20444",
      "url": "https://www.cve.org/CVERecord?id=CVE-2019-20444"
    },
    {
      "name": "CVE-2019-14379",
      "url": "https://www.cve.org/CVERecord?id=CVE-2019-14379"
    },
    {
      "name": "CVE-2019-14540",
      "url": "https://www.cve.org/CVERecord?id=CVE-2019-14540"
    },
    {
      "name": "CVE-2020-9546",
      "url": "https://www.cve.org/CVERecord?id=CVE-2020-9546"
    },
    {
      "name": "CVE-2019-12086",
      "url": "https://www.cve.org/CVERecord?id=CVE-2019-12086"
    },
    {
      "name": "CVE-2020-9548",
      "url": "https://www.cve.org/CVERecord?id=CVE-2020-9548"
    },
    {
      "name": "CVE-2019-14439",
      "url": "https://www.cve.org/CVERecord?id=CVE-2019-14439"
    },
    {
      "name": "CVE-2020-8840",
      "url": "https://www.cve.org/CVERecord?id=CVE-2020-8840"
    },
    {
      "name": "CVE-2019-16942",
      "url": "https://www.cve.org/CVERecord?id=CVE-2019-16942"
    },
    {
      "name": "CVE-2020-35490",
      "url": "https://www.cve.org/CVERecord?id=CVE-2020-35490"
    },
    {
      "name": "CVE-2020-9547",
      "url": "https://www.cve.org/CVERecord?id=CVE-2020-9547"
    },
    {
      "name": "CVE-2020-35491",
      "url": "https://www.cve.org/CVERecord?id=CVE-2020-35491"
    },
    {
      "name": "CVE-2019-16335",
      "url": "https://www.cve.org/CVERecord?id=CVE-2019-16335"
    },
    {
      "name": "CVE-2019-17531",
      "url": "https://www.cve.org/CVERecord?id=CVE-2019-17531"
    },
    {
      "name": "CVE-2019-20330",
      "url": "https://www.cve.org/CVERecord?id=CVE-2019-20330"
    },
    {
      "name": "CVE-2019-0210",
      "url": "https://www.cve.org/CVERecord?id=CVE-2019-0210"
    },
    {
      "name": "CVE-2019-0205",
      "url": "https://www.cve.org/CVERecord?id=CVE-2019-0205"
    },
    {
      "name": "CVE-2020-36518",
      "url": "https://www.cve.org/CVERecord?id=CVE-2020-36518"
    },
    {
      "name": "CVE-2018-14720",
      "url": "https://www.cve.org/CVERecord?id=CVE-2018-14720"
    },
    {
      "name": "CVE-2018-19362",
      "url": "https://www.cve.org/CVERecord?id=CVE-2018-19362"
    },
    {
      "name": "CVE-2018-19361",
      "url": "https://www.cve.org/CVERecord?id=CVE-2018-19361"
    },
    {
      "name": "CVE-2018-14719",
      "url": "https://www.cve.org/CVERecord?id=CVE-2018-14719"
    },
    {
      "name": "CVE-2018-14718",
      "url": "https://www.cve.org/CVERecord?id=CVE-2018-14718"
    },
    {
      "name": "CVE-2018-11307",
      "url": "https://www.cve.org/CVERecord?id=CVE-2018-11307"
    },
    {
      "name": "CVE-2018-19360",
      "url": "https://www.cve.org/CVERecord?id=CVE-2018-19360"
    },
    {
      "name": "CVE-2022-25647",
      "url": "https://www.cve.org/CVERecord?id=CVE-2022-25647"
    },
    {
      "name": "CVE-2019-10202",
      "url": "https://www.cve.org/CVERecord?id=CVE-2019-10202"
    },
    {
      "name": "CVE-2022-42003",
      "url": "https://www.cve.org/CVERecord?id=CVE-2022-42003"
    },
    {
      "name": "CVE-2022-42004",
      "url": "https://www.cve.org/CVERecord?id=CVE-2022-42004"
    },
    {
      "name": "CVE-2022-40149",
      "url": "https://www.cve.org/CVERecord?id=CVE-2022-40149"
    },
    {
      "name": "CVE-2022-40150",
      "url": "https://www.cve.org/CVERecord?id=CVE-2022-40150"
    },
    {
      "name": "CVE-2022-3171",
      "url": "https://www.cve.org/CVERecord?id=CVE-2022-3171"
    },
    {
      "name": "CVE-2022-23491",
      "url": "https://www.cve.org/CVERecord?id=CVE-2022-23491"
    },
    {
      "name": "CVE-2023-0286",
      "url": "https://www.cve.org/CVERecord?id=CVE-2023-0286"
    },
    {
      "name": "CVE-2023-0401",
      "url": "https://www.cve.org/CVERecord?id=CVE-2023-0401"
    },
    {
      "name": "CVE-2023-0215",
      "url": "https://www.cve.org/CVERecord?id=CVE-2023-0215"
    },
    {
      "name": "CVE-2023-0217",
      "url": "https://www.cve.org/CVERecord?id=CVE-2023-0217"
    },
    {
      "name": "CVE-2023-0216",
      "url": "https://www.cve.org/CVERecord?id=CVE-2023-0216"
    },
    {
      "name": "CVE-2022-4450",
      "url": "https://www.cve.org/CVERecord?id=CVE-2022-4450"
    },
    {
      "name": "CVE-2022-3509",
      "url": "https://www.cve.org/CVERecord?id=CVE-2022-3509"
    },
    {
      "name": "CVE-2017-7657",
      "url": "https://www.cve.org/CVERecord?id=CVE-2017-7657"
    },
    {
      "name": "CVE-2017-7658",
      "url": "https://www.cve.org/CVERecord?id=CVE-2017-7658"
    },
    {
      "name": "CVE-2017-7656",
      "url": "https://www.cve.org/CVERecord?id=CVE-2017-7656"
    },
    {
      "name": "CVE-2023-1370",
      "url": "https://www.cve.org/CVERecord?id=CVE-2023-1370"
    },
    {
      "name": "CVE-2022-40023",
      "url": "https://www.cve.org/CVERecord?id=CVE-2022-40023"
    },
    {
      "name": "CVE-2022-3510",
      "url": "https://www.cve.org/CVERecord?id=CVE-2022-3510"
    },
    {
      "name": "CVE-2023-2976",
      "url": "https://www.cve.org/CVERecord?id=CVE-2023-2976"
    },
    {
      "name": "CVE-2018-20225",
      "url": "https://www.cve.org/CVERecord?id=CVE-2018-20225"
    },
    {
      "name": "CVE-2023-37920",
      "url": "https://www.cve.org/CVERecord?id=CVE-2023-37920"
    },
    {
      "name": "CVE-2023-34454",
      "url": "https://www.cve.org/CVERecord?id=CVE-2023-34454"
    },
    {
      "name": "CVE-2023-34455",
      "url": "https://www.cve.org/CVERecord?id=CVE-2023-34455"
    },
    {
      "name": "CVE-2023-34453",
      "url": "https://www.cve.org/CVERecord?id=CVE-2023-34453"
    },
    {
      "name": "CVE-2023-44487",
      "url": "https://www.cve.org/CVERecord?id=CVE-2023-44487"
    },
    {
      "name": "CVE-2023-4807",
      "url": "https://www.cve.org/CVERecord?id=CVE-2023-4807"
    },
    {
      "name": "CVE-2023-43642",
      "url": "https://www.cve.org/CVERecord?id=CVE-2023-43642"
    },
    {
      "name": "CVE-2023-3635",
      "url": "https://www.cve.org/CVERecord?id=CVE-2023-3635"
    },
    {
      "name": "CVE-2023-47627",
      "url": "https://www.cve.org/CVERecord?id=CVE-2023-47627"
    },
    {
      "name": "CVE-2023-49081",
      "url": "https://www.cve.org/CVERecord?id=CVE-2023-49081"
    },
    {
      "name": "CVE-2023-49082",
      "url": "https://www.cve.org/CVERecord?id=CVE-2023-49082"
    },
    {
      "name": "CVE-2024-1597",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-1597"
    },
    {
      "name": "CVE-2023-39410",
      "url": "https://www.cve.org/CVERecord?id=CVE-2023-39410"
    },
    {
      "name": "CVE-2024-23334",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-23334"
    },
    {
      "name": "CVE-2024-23829",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-23829"
    },
    {
      "name": "CVE-2022-46337",
      "url": "https://www.cve.org/CVERecord?id=CVE-2022-46337"
    },
    {
      "name": "CVE-2023-49083",
      "url": "https://www.cve.org/CVERecord?id=CVE-2023-49083"
    },
    {
      "name": "CVE-2024-26130",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-26130"
    },
    {
      "name": "CVE-2023-50782",
      "url": "https://www.cve.org/CVERecord?id=CVE-2023-50782"
    },
    {
      "name": "CVE-2024-21634",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-21634"
    },
    {
      "name": "CVE-2024-29131",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-29131"
    },
    {
      "name": "CVE-2023-22946",
      "url": "https://www.cve.org/CVERecord?id=CVE-2023-22946"
    },
    {
      "name": "CVE-2020-10650",
      "url": "https://www.cve.org/CVERecord?id=CVE-2020-10650"
    },
    {
      "name": "CVE-2025-9232",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-9232"
    },
    {
      "name": "CVE-2025-49844",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-49844"
    },
    {
      "name": "CVE-2025-1948",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-1948"
    },
    {
      "name": "CVE-2025-8291",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-8291"
    },
    {
      "name": "CVE-2025-27553",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-27553"
    },
    {
      "name": "CVE-2024-27306",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-27306"
    },
    {
      "name": "CVE-2024-29857",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-29857"
    },
    {
      "name": "CVE-2024-30251",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-30251"
    },
    {
      "name": "CVE-2024-5535",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-5535"
    },
    {
      "name": "CVE-2024-3651",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-3651"
    },
    {
      "name": "CVE-2024-0397",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-0397"
    },
    {
      "name": "CVE-2024-35195",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-35195"
    },
    {
      "name": "CVE-2024-4068",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-4068"
    },
    {
      "name": "CVE-2024-37891",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-37891"
    },
    {
      "name": "CVE-2024-6345",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-6345"
    },
    {
      "name": "CVE-2025-58057",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-58057"
    },
    {
      "name": "CVE-2025-30153",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-30153"
    },
    {
      "name": "CVE-2025-58060",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-58060"
    },
    {
      "name": "CVE-2025-6075",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-6075"
    },
    {
      "name": "CVE-2025-53057",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-53057"
    },
    {
      "name": "CVE-2025-53066",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-53066"
    },
    {
      "name": "CVE-2025-11226",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-11226"
    },
    {
      "name": "CVE-2025-58187",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-58187"
    },
    {
      "name": "CVE-2025-58188",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-58188"
    },
    {
      "name": "CVE-2025-61723",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-61723"
    },
    {
      "name": "CVE-2025-61725",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-61725"
    },
    {
      "name": "CVE-2024-39689",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-39689"
    },
    {
      "name": "CVE-2024-41110",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-41110"
    },
    {
      "name": "CVE-2024-7264",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-7264"
    },
    {
      "name": "CVE-2024-34156",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-34156"
    },
    {
      "name": "CVE-2024-34158",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-34158"
    },
    {
      "name": "CVE-2024-24790",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-24790"
    },
    {
      "name": "CVE-2025-9820",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-9820"
    },
    {
      "name": "CVE-2025-52881",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-52881"
    },
    {
      "name": "CVE-2024-7592",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-7592"
    },
    {
      "name": "CVE-2024-9681",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-9681"
    },
    {
      "name": "CVE-2025-58436",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-58436"
    },
    {
      "name": "CVE-2025-64505",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-64505"
    },
    {
      "name": "CVE-2025-64506",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-64506"
    },
    {
      "name": "CVE-2025-64720",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-64720"
    },
    {
      "name": "CVE-2025-65018",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-65018"
    },
    {
      "name": "CVE-2025-61729",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-61729"
    },
    {
      "name": "CVE-2025-66293",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-66293"
    },
    {
      "name": "CVE-2025-13836",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-13836"
    },
    {
      "name": "CVE-2025-12084",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-12084"
    },
    {
      "name": "CVE-2025-66516",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-66516"
    },
    {
      "name": "CVE-2025-37731",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-37731"
    },
    {
      "name": "CVE-2025-14174",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-14174"
    },
    {
      "name": "CVE-2024-11053",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-11053"
    },
    {
      "name": "CVE-2024-36114",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-36114"
    },
    {
      "name": "CVE-2024-25638",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-25638"
    },
    {
      "name": "CVE-2024-12086",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-12086"
    },
    {
      "name": "CVE-2024-12087",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-12087"
    },
    {
      "name": "CVE-2024-12088",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-12088"
    },
    {
      "name": "CVE-2024-12084",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-12084"
    },
    {
      "name": "CVE-2024-47561",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-47561"
    },
    {
      "name": "CVE-2025-0938",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-0938"
    },
    {
      "name": "CVE-2024-12797",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-12797"
    },
    {
      "name": "CVE-2024-13176",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-13176"
    },
    {
      "name": "CVE-2025-1795",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-1795"
    },
    {
      "name": "CVE-2024-24791",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-24791"
    },
    {
      "name": "CVE-2024-45337",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-45337"
    },
    {
      "name": "CVE-2024-53899",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-53899"
    },
    {
      "name": "CVE-2025-30065",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-30065"
    },
    {
      "name": "CVE-2024-12798",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-12798"
    },
    {
      "name": "CVE-2024-12801",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-12801"
    },
    {
      "name": "CVE-2025-22868",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-22868"
    },
    {
      "name": "CVE-2025-22871",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-22871"
    },
    {
      "name": "CVE-2025-30204",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-30204"
    },
    {
      "name": "CVE-2025-4516",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-4516"
    },
    {
      "name": "CVE-2024-55549",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-55549"
    },
    {
      "name": "CVE-2025-24855",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-24855"
    },
    {
      "name": "CVE-2025-22869",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-22869"
    },
    {
      "name": "CVE-2025-4517",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-4517"
    },
    {
      "name": "CVE-2025-4330",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-4330"
    },
    {
      "name": "CVE-2025-4138",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-4138"
    },
    {
      "name": "CVE-2024-12718",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-12718"
    },
    {
      "name": "CVE-2025-4435",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-4435"
    },
    {
      "name": "CVE-2024-52304",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-52304"
    },
    {
      "name": "CVE-2025-49146",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-49146"
    },
    {
      "name": "CVE-2024-41996",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-41996"
    },
    {
      "name": "CVE-2025-22872",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-22872"
    },
    {
      "name": "CVE-2024-47081",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-47081"
    },
    {
      "name": "CVE-2025-4565",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-4565"
    },
    {
      "name": "CVE-2025-30749",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-30749"
    },
    {
      "name": "CVE-2025-30754",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-30754"
    },
    {
      "name": "CVE-2025-30761",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-30761"
    },
    {
      "name": "CVE-2025-50059",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-50059"
    },
    {
      "name": "CVE-2025-50106",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-50106"
    },
    {
      "name": "CVE-2024-45339",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-45339"
    },
    {
      "name": "CVE-2025-48924",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-48924"
    },
    {
      "name": "CVE-2025-50181",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-50181"
    },
    {
      "name": "CVE-2025-6069",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-6069"
    },
    {
      "name": "CVE-2025-8194",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-8194"
    },
    {
      "name": "CVE-2023-5590",
      "url": "https://www.cve.org/CVERecord?id=CVE-2023-5590"
    },
    {
      "name": "CVE-2018-12022",
      "url": "https://www.cve.org/CVERecord?id=CVE-2018-12022"
    },
    {
      "name": "CVE-2025-27210",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-27210"
    },
    {
      "name": "CVE-2025-47273",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-47273"
    },
    {
      "name": "CVE-2024-13009",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-13009"
    },
    {
      "name": "CVE-2025-7338",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-7338"
    },
    {
      "name": "CVE-2025-4674",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-4674"
    },
    {
      "name": "CVE-2025-47907",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-47907"
    },
    {
      "name": "CVE-2024-58251",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-58251"
    },
    {
      "name": "CVE-2025-46394",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-46394"
    },
    {
      "name": "CVE-2025-46762",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-46762"
    },
    {
      "name": "CVE-2025-9086",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-9086"
    },
    {
      "name": "CVE-2025-68384",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-68384"
    },
    {
      "name": "CVE-2025-68390",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-68390"
    },
    {
      "name": "CVE-2025-47913",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-47913"
    },
    {
      "name": "CVE-2025-31133",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-31133"
    },
    {
      "name": "CVE-2025-52565",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-52565"
    },
    {
      "name": "CVE-2025-14819",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-14819"
    },
    {
      "name": "CVE-2025-67735",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-67735"
    },
    {
      "name": "CVE-2025-66566",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-66566"
    },
    {
      "name": "CVE-2025-11187",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-11187"
    },
    {
      "name": "CVE-2025-15467",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-15467"
    },
    {
      "name": "CVE-2025-15468",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-15468"
    },
    {
      "name": "CVE-2025-66199",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-66199"
    },
    {
      "name": "CVE-2025-68160",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-68160"
    },
    {
      "name": "CVE-2025-69418",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-69418"
    },
    {
      "name": "CVE-2025-69419",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-69419"
    },
    {
      "name": "CVE-2025-69420",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-69420"
    },
    {
      "name": "CVE-2025-69421",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-69421"
    },
    {
      "name": "CVE-2026-22795",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-22795"
    },
    {
      "name": "CVE-2026-22796",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-22796"
    },
    {
      "name": "CVE-2025-55130",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-55130"
    },
    {
      "name": "CVE-2025-55131",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-55131"
    },
    {
      "name": "CVE-2025-55132",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-55132"
    },
    {
      "name": "CVE-2025-59464",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-59464"
    },
    {
      "name": "CVE-2025-59465",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-59465"
    },
    {
      "name": "CVE-2025-59466",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-59466"
    },
    {
      "name": "CVE-2026-21637",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21637"
    },
    {
      "name": "CVE-2025-12183",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-12183"
    },
    {
      "name": "CVE-2026-21925",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21925"
    },
    {
      "name": "CVE-2026-21932",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21932"
    },
    {
      "name": "CVE-2026-21933",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21933"
    },
    {
      "name": "CVE-2026-21945",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21945"
    },
    {
      "name": "CVE-2025-66418",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-66418"
    },
    {
      "name": "CVE-2025-66471",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-66471"
    },
    {
      "name": "CVE-2026-21441",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21441"
    },
    {
      "name": "CVE-2025-11468",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-11468"
    },
    {
      "name": "CVE-2025-15282",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-15282"
    },
    {
      "name": "CVE-2026-0865",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-0865"
    },
    {
      "name": "CVE-2025-28162",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-28162"
    },
    {
      "name": "CVE-2025-28164",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-28164"
    },
    {
      "name": "CVE-2025-68973",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-68973"
    },
    {
      "name": "CVE-2026-1861",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-1861"
    },
    {
      "name": "CVE-2026-24515",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-24515"
    },
    {
      "name": "CVE-2026-25210",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-25210"
    },
    {
      "name": "CVE-2025-14831",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-14831"
    },
    {
      "name": "CVE-2026-1584",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-1584"
    },
    {
      "name": "CVE-2026-2441",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-2441"
    },
    {
      "name": "CVE-2026-2648",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-2648"
    },
    {
      "name": "CVE-2026-2649",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-2649"
    },
    {
      "name": "CVE-2026-2650",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-2650"
    },
    {
      "name": "CVE-2025-68121",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-68121"
    },
    {
      "name": "CVE-2026-3061",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-3061"
    },
    {
      "name": "CVE-2026-3062",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-3062"
    },
    {
      "name": "CVE-2026-3063",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-3063"
    },
    {
      "name": "CVE-2025-61726",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-61726"
    },
    {
      "name": "CVE-2025-61728",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-61728"
    },
    {
      "name": "CVE-2025-61730",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-61730"
    },
    {
      "name": "CVE-2025-61731",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-61731"
    },
    {
      "name": "CVE-2025-61732",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-61732"
    },
    {
      "name": "CVE-2025-68119",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-68119"
    },
    {
      "name": "CVE-2025-13151",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-13151"
    },
    {
      "name": "CVE-2025-68161",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-68161"
    },
    {
      "name": "CVE-2026-1225",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-1225"
    },
    {
      "name": "CVE-2026-22695",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-22695"
    },
    {
      "name": "CVE-2026-22801",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-22801"
    },
    {
      "name": "CVE-2026-27171",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-27171"
    },
    {
      "name": "CVE-2025-69277",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-69277"
    },
    {
      "name": "CVE-2026-0965",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-0965"
    },
    {
      "name": "CVE-2026-0967",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-0967"
    },
    {
      "name": "CVE-2026-0968",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-0968"
    },
    {
      "name": "CVE-2025-47911",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-47911"
    },
    {
      "name": "CVE-2025-58190",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-58190"
    },
    {
      "name": "CVE-2024-29371",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-29371"
    },
    {
      "name": "CVE-2025-69223",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-69223"
    },
    {
      "name": "CVE-2025-69225",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-69225"
    },
    {
      "name": "CVE-2025-69226",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-69226"
    },
    {
      "name": "CVE-2025-69227",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-69227"
    },
    {
      "name": "CVE-2025-69228",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-69228"
    },
    {
      "name": "CVE-2025-69229",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-69229"
    },
    {
      "name": "CVE-2026-22690",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-22690"
    },
    {
      "name": "CVE-2026-22691",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-22691"
    },
    {
      "name": "CVE-2026-3536",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-3536"
    },
    {
      "name": "CVE-2026-3537",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-3537"
    },
    {
      "name": "CVE-2026-3538",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-3538"
    },
    {
      "name": "CVE-2026-3539",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-3539"
    },
    {
      "name": "CVE-2026-3540",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-3540"
    },
    {
      "name": "CVE-2026-3541",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-3541"
    },
    {
      "name": "CVE-2026-3542",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-3542"
    },
    {
      "name": "CVE-2026-3543",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-3543"
    },
    {
      "name": "CVE-2026-3544",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-3544"
    },
    {
      "name": "CVE-2026-3545",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-3545"
    },
    {
      "name": "CVE-2026-25639",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-25639"
    },
    {
      "name": "CVE-2026-27141",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-27141"
    },
    {
      "name": "CVE-2026-2673",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-2673"
    },
    {
      "name": "CVE-2026-22702",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-22702"
    },
    {
      "name": "CVE-2026-25679",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-25679"
    },
    {
      "name": "CVE-2026-27139",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-27139"
    },
    {
      "name": "CVE-2026-27142",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-27142"
    },
    {
      "name": "CVE-2026-26007",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-26007"
    },
    {
      "name": "CVE-2026-3731",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-3731"
    },
    {
      "name": "CVE-2026-4111",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-4111"
    },
    {
      "name": "CVE-2026-22732",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-22732"
    },
    {
      "name": "CVE-2026-22735",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-22735"
    },
    {
      "name": "CVE-2026-22737",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-22737"
    },
    {
      "name": "CVE-2026-33186",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-33186"
    },
    {
      "name": "CVE-2025-67030",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-67030"
    },
    {
      "name": "CVE-2026-33055",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-33055"
    },
    {
      "name": "CVE-2026-33056",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-33056"
    },
    {
      "name": "CVE-2026-31790",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-31790"
    },
    {
      "name": "CVE-2026-28387",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-28387"
    },
    {
      "name": "CVE-2026-28388",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-28388"
    },
    {
      "name": "CVE-2026-28389",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-28389"
    },
    {
      "name": "CVE-2026-28390",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-28390"
    },
    {
      "name": "CVE-2026-31789",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-31789"
    },
    {
      "name": "CVE-2026-21710",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21710"
    },
    {
      "name": "CVE-2026-21713",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21713"
    },
    {
      "name": "CVE-2026-21714",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21714"
    },
    {
      "name": "CVE-2026-21715",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21715"
    },
    {
      "name": "CVE-2026-21716",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21716"
    },
    {
      "name": "CVE-2026-33870",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-33870"
    },
    {
      "name": "CVE-2026-35469",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-35469"
    },
    {
      "name": "CVE-2026-21712",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21712"
    },
    {
      "name": "CVE-2026-21717",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21717"
    },
    {
      "name": "CVE-2026-24688",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-24688"
    },
    {
      "name": "CVE-2026-27024",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-27024"
    },
    {
      "name": "CVE-2026-27025",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-27025"
    },
    {
      "name": "CVE-2026-27026",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-27026"
    },
    {
      "name": "CVE-2026-27628",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-27628"
    },
    {
      "name": "CVE-2026-27888",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-27888"
    },
    {
      "name": "CVE-2026-28351",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-28351"
    },
    {
      "name": "CVE-2026-27456",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-27456"
    },
    {
      "name": "CVE-2026-32288",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-32288"
    },
    {
      "name": "CVE-2026-33810",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-33810"
    },
    {
      "name": "CVE-2026-33871",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-33871"
    },
    {
      "name": "CVE-2026-1605",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-1605"
    },
    {
      "name": "CVE-2026-27140",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-27140"
    },
    {
      "name": "CVE-2026-27143",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-27143"
    },
    {
      "name": "CVE-2026-27144",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-27144"
    },
    {
      "name": "CVE-2026-32280",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-32280"
    },
    {
      "name": "CVE-2026-32281",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-32281"
    },
    {
      "name": "CVE-2026-32282",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-32282"
    },
    {
      "name": "CVE-2026-32283",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-32283"
    },
    {
      "name": "CVE-2026-32289",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-32289"
    },
    {
      "name": "CVE-2025-11143",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-11143"
    },
    {
      "name": "CVE-2025-62718",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-62718"
    },
    {
      "name": "CVE-2026-32141",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-32141"
    },
    {
      "name": "CVE-2026-33228",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-33228"
    },
    {
      "name": "CVE-2026-34480",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-34480"
    },
    {
      "name": "CVE-2026-40175",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-40175"
    },
    {
      "name": "CVE-2026-28804",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-28804"
    },
    {
      "name": "CVE-2026-34073",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-34073"
    },
    {
      "name": "CVE-2026-39892",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-39892"
    },
    {
      "name": "CVE-2018-12023",
      "url": "https://www.cve.org/CVERecord?id=CVE-2018-12023"
    },
    {
      "name": "CVE-2026-25990",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-25990"
    },
    {
      "name": "CVE-2026-40192",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-40192"
    },
    {
      "name": "CVE-2026-4424",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-4424"
    },
    {
      "name": "CVE-2026-5121",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-5121"
    },
    {
      "name": "CVE-2022-45868",
      "url": "https://www.cve.org/CVERecord?id=CVE-2022-45868"
    },
    {
      "name": "CVE-2023-2251",
      "url": "https://www.cve.org/CVERecord?id=CVE-2023-2251"
    },
    {
      "name": "CVE-2023-5408",
      "url": "https://www.cve.org/CVERecord?id=CVE-2023-5408"
    },
    {
      "name": "CVE-2024-10220",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-10220"
    },
    {
      "name": "CVE-2024-11079",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-11079"
    },
    {
      "name": "CVE-2024-27308",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-27308"
    },
    {
      "name": "CVE-2024-32650",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-32650"
    },
    {
      "name": "CVE-2024-5321",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-5321"
    },
    {
      "name": "CVE-2024-8775",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-8775"
    },
    {
      "name": "CVE-2025-29774",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-29774"
    },
    {
      "name": "CVE-2025-29775",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-29775"
    },
    {
      "name": "CVE-2025-4432",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-4432"
    },
    {
      "name": "CVE-2025-55159",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-55159"
    },
    {
      "name": "CVE-2025-68156",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-68156"
    },
    {
      "name": "CVE-2026-20238",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-20238"
    },
    {
      "name": "CVE-2026-20239",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-20239"
    },
    {
      "name": "CVE-2026-20240",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-20240"
    },
    {
      "name": "CVE-2026-25541",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-25541"
    },
    {
      "name": "CVE-2026-25833",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-25833"
    },
    {
      "name": "CVE-2026-25834",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-25834"
    },
    {
      "name": "CVE-2026-25835",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-25835"
    },
    {
      "name": "CVE-2026-27699",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-27699"
    },
    {
      "name": "CVE-2026-32776",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-32776"
    },
    {
      "name": "CVE-2026-32777",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-32777"
    },
    {
      "name": "CVE-2026-32778",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-32778"
    },
    {
      "name": "CVE-2026-34477",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-34477"
    },
    {
      "name": "CVE-2026-34478",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-34478"
    },
    {
      "name": "CVE-2026-34871",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-34871"
    },
    {
      "name": "CVE-2026-34872",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-34872"
    },
    {
      "name": "CVE-2026-34873",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-34873"
    },
    {
      "name": "CVE-2026-34874",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-34874"
    },
    {
      "name": "CVE-2026-34875",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-34875"
    },
    {
      "name": "CVE-2026-34876",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-34876"
    },
    {
      "name": "CVE-2026-34877",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-34877"
    },
    {
      "name": "CVE-2026-40200",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-40200"
    },
    {
      "name": "CVE-2026-41324",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-41324"
    },
    {
      "name": "CVE-2026-42308",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-42308"
    },
    {
      "name": "CVE-2026-42309",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-42309"
    },
    {
      "name": "CVE-2026-42310",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-42310"
    },
    {
      "name": "CVE-2026-42311",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-42311"
    },
    {
      "name": "CVE-2026-6042",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-6042"
    }
  ],
  "initial_release_date": "2026-05-21T00:00:00",
  "last_revision_date": "2026-05-21T00:00:00",
  "links": [],
  "reference": "CERTFR-2026-AVI-0627",
  "revisions": [
    {
      "description": "Version initiale",
      "revision_date": "2026-05-21T00:00:00.000000"
    }
  ],
  "risks": [
    {
      "description": "D\u00e9ni de service \u00e0 distance"
    },
    {
      "description": "Non sp\u00e9cifi\u00e9 par l\u0027\u00e9diteur"
    },
    {
      "description": "Atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es"
    }
  ],
  "summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans les produits Splunk. Certaines d\u0027entre elles permettent \u00e0 un attaquant de provoquer un d\u00e9ni de service \u00e0 distance, une atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es et un probl\u00e8me de s\u00e9curit\u00e9 non sp\u00e9cifi\u00e9 par l\u0027\u00e9diteur.",
  "title": "Multiples vuln\u00e9rabilit\u00e9s dans les produits Splunk",
  "vendor_advisories": [
    {
      "published_at": "2026-05-20",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0512",
      "url": "https://advisory.splunk.com/advisories/SVD-2026-0512"
    },
    {
      "published_at": "2026-05-20",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0513",
      "url": "https://advisory.splunk.com/advisories/SVD-2026-0513"
    },
    {
      "published_at": "2026-05-20",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0509",
      "url": "https://advisory.splunk.com/advisories/SVD-2026-0509"
    },
    {
      "published_at": "2026-05-20",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0510",
      "url": "https://advisory.splunk.com/advisories/SVD-2026-0510"
    },
    {
      "published_at": "2026-05-20",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0505",
      "url": "https://advisory.splunk.com/advisories/SVD-2026-0505"
    },
    {
      "published_at": "2026-05-20",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0515",
      "url": "https://advisory.splunk.com/advisories/SVD-2026-0515"
    },
    {
      "published_at": "2026-05-20",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0507",
      "url": "https://advisory.splunk.com/advisories/SVD-2026-0507"
    },
    {
      "published_at": "2026-05-20",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0506",
      "url": "https://advisory.splunk.com/advisories/SVD-2026-0506"
    },
    {
      "published_at": "2026-05-20",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0508",
      "url": "https://advisory.splunk.com/advisories/SVD-2026-0508"
    },
    {
      "published_at": "2026-05-20",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0504",
      "url": "https://advisory.splunk.com/advisories/SVD-2026-0504"
    },
    {
      "published_at": "2026-05-20",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0514",
      "url": "https://advisory.splunk.com/advisories/SVD-2026-0514"
    },
    {
      "published_at": "2026-05-20",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0516",
      "url": "https://advisory.splunk.com/advisories/SVD-2026-0516"
    },
    {
      "published_at": "2026-05-13",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0501",
      "url": "https://advisory.splunk.com/advisories/SVD-2026-0501"
    },
    {
      "published_at": "2026-05-20",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0503",
      "url": "https://advisory.splunk.com/advisories/SVD-2026-0503"
    },
    {
      "published_at": "2026-05-20",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0511",
      "url": "https://advisory.splunk.com/advisories/SVD-2026-0511"
    },
    {
      "published_at": "2026-05-20",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2026-0502",
      "url": "https://advisory.splunk.com/advisories/SVD-2026-0502"
    }
  ]
}

CERTFR-2025-AVI-1063
Vulnerability from certfr_avis

De multiples vulnérabilités ont été découvertes dans les produits Splunk. Certaines d'entre elles permettent à un attaquant de provoquer un déni de service à distance, une atteinte à la confidentialité des données et une atteinte à l'intégrité des données.

Solutions

Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).

Impacted products
Vendor Product Description
Splunk Splunk Splunk Enterprise versions 9.4.x antérieures à 9.4.6
Splunk Splunk Splunk Cloud Platform versions 10.1.2507.x antérieures à 10.1.2507.10
Splunk Splunk Splunk MCP Server versions 0.2.x antérieures à 0.2.4
Splunk Splunk Splunk Enterprise versions 10.0.x antérieures à 10.0.2
Splunk Splunk Splunk Enterprise versions 9.3.x antérieures à 9.3.8
Splunk Splunk Splunk Enterprise versions 9.2.x antérieures à 9.2.10
Splunk Splunk Secure Gateway Splunk Secure Gateway versions 3.9.x antérieures à 3.9.10
Splunk Splunk Secure Gateway Splunk Secure Gateway versions 3.8.x antérieures à 3.8.58
Splunk Splunk Splunk Cloud Platform versions 10.0.2503.x antérieures à 10.0.2503.8
Splunk Splunk Splunk Cloud Platform versions 9.3.2411.x antérieures à 9.3.2411.120
Splunk Splunk Secure Gateway Splunk Secure Gateway versions 3.7.x antérieures à 3.7.28
References

Show details on source website


{
  "$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
  "affected_systems": [
    {
      "description": "Splunk Enterprise versions 9.4.x ant\u00e9rieures \u00e0 9.4.6",
      "product": {
        "name": "Splunk",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk Cloud Platform versions 10.1.2507.x ant\u00e9rieures \u00e0 10.1.2507.10",
      "product": {
        "name": "Splunk",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk MCP Server versions 0.2.x ant\u00e9rieures \u00e0 0.2.4",
      "product": {
        "name": "Splunk",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk Enterprise versions 10.0.x ant\u00e9rieures \u00e0 10.0.2",
      "product": {
        "name": "Splunk",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk Enterprise versions 9.3.x ant\u00e9rieures \u00e0 9.3.8",
      "product": {
        "name": "Splunk",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk Enterprise versions 9.2.x ant\u00e9rieures \u00e0 9.2.10",
      "product": {
        "name": "Splunk",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk Secure Gateway versions 3.9.x ant\u00e9rieures \u00e0 3.9.10",
      "product": {
        "name": "Splunk Secure Gateway",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk Secure Gateway versions 3.8.x ant\u00e9rieures \u00e0 3.8.58",
      "product": {
        "name": "Splunk Secure Gateway",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk Cloud Platform versions 10.0.2503.x ant\u00e9rieures \u00e0 10.0.2503.8",
      "product": {
        "name": "Splunk",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk Cloud Platform versions 9.3.2411.x ant\u00e9rieures \u00e0 9.3.2411.120",
      "product": {
        "name": "Splunk",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk Secure Gateway versions 3.7.x ant\u00e9rieures \u00e0 3.7.28",
      "product": {
        "name": "Splunk Secure Gateway",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    }
  ],
  "affected_systems_content": "",
  "content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
  "cves": [
    {
      "name": "CVE-2025-20387",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-20387"
    },
    {
      "name": "CVE-2025-20386",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-20386"
    },
    {
      "name": "CVE-2025-20382",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-20382"
    },
    {
      "name": "CVE-2025-20383",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-20383"
    },
    {
      "name": "CVE-2025-20388",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-20388"
    },
    {
      "name": "CVE-2025-20384",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-20384"
    },
    {
      "name": "CVE-2025-20389",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-20389"
    },
    {
      "name": "CVE-2025-20381",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-20381"
    },
    {
      "name": "CVE-2025-20385",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-20385"
    },
    {
      "name": "CVE-2025-47273",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-47273"
    }
  ],
  "initial_release_date": "2025-12-04T00:00:00",
  "last_revision_date": "2025-12-04T00:00:00",
  "links": [],
  "reference": "CERTFR-2025-AVI-1063",
  "revisions": [
    {
      "description": "Version initiale",
      "revision_date": "2025-12-04T00:00:00.000000"
    }
  ],
  "risks": [
    {
      "description": "D\u00e9ni de service \u00e0 distance"
    },
    {
      "description": "Injection de code indirecte \u00e0 distance (XSS)"
    },
    {
      "description": "Atteinte \u00e0 l\u0027int\u00e9grit\u00e9 des donn\u00e9es"
    },
    {
      "description": "Non sp\u00e9cifi\u00e9 par l\u0027\u00e9diteur"
    },
    {
      "description": "Falsification de requ\u00eates c\u00f4t\u00e9 serveur (SSRF)"
    },
    {
      "description": "Contournement de la politique de s\u00e9curit\u00e9"
    },
    {
      "description": "Atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es"
    }
  ],
  "summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans les produits Splunk. Certaines d\u0027entre elles permettent \u00e0 un attaquant de provoquer un d\u00e9ni de service \u00e0 distance, une atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es et une atteinte \u00e0 l\u0027int\u00e9grit\u00e9 des donn\u00e9es.",
  "title": "Multiples vuln\u00e9rabilit\u00e9s dans les produits Splunk",
  "vendor_advisories": [
    {
      "published_at": "2025-12-03",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2025-1205",
      "url": "https://advisory.splunk.com/advisories/SVD-2025-1205"
    },
    {
      "published_at": "2025-12-03",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2025-1201",
      "url": "https://advisory.splunk.com/advisories/SVD-2025-1201"
    },
    {
      "published_at": "2025-12-03",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2025-1208",
      "url": "https://advisory.splunk.com/advisories/SVD-2025-1208"
    },
    {
      "published_at": "2025-12-03",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2025-1204",
      "url": "https://advisory.splunk.com/advisories/SVD-2025-1204"
    },
    {
      "published_at": "2025-12-03",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2025-1207",
      "url": "https://advisory.splunk.com/advisories/SVD-2025-1207"
    },
    {
      "published_at": "2025-12-03",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2025-1203",
      "url": "https://advisory.splunk.com/advisories/SVD-2025-1203"
    },
    {
      "published_at": "2025-12-03",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2025-1206",
      "url": "https://advisory.splunk.com/advisories/SVD-2025-1206"
    },
    {
      "published_at": "2025-12-03",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2025-1202",
      "url": "https://advisory.splunk.com/advisories/SVD-2025-1202"
    },
    {
      "published_at": "2025-12-03",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2025-1209",
      "url": "https://advisory.splunk.com/advisories/SVD-2025-1209"
    },
    {
      "published_at": "2025-12-03",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2025-1210",
      "url": "https://advisory.splunk.com/advisories/SVD-2025-1210"
    }
  ]
}

CERTFR-2025-AVI-1000
Vulnerability from certfr_avis

De multiples vulnérabilités ont été découvertes dans les produits Splunk. Elles permettent à un attaquant de provoquer un contournement de la politique de sécurité et un problème de sécurité non spécifié par l'éditeur.

Solutions

Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).

Impacted products
Vendor Product Description
Splunk Splunk Splunk Enterprise versions 9.4.x antérieures à 9.4.5
Splunk Splunk Splunk Cloud Platform versions 10.1.2507 antérieures à 10.1.2507.1
Splunk Splunk Splunk Cloud Platform versions 9.3.2408 antérieures à 9.3.2408.124
Splunk Splunk Splunk Cloud Platform versions 9.3.2411 antérieures à 9.3.2411.116
Splunk Splunk Splunk Enterprise versions 10.0.x antérieures à 10.0.1
Splunk Splunk Splunk Cloud Platform versions 10.0.2503 antérieures à 10.0.2503.5
Splunk Splunk Splunk Enterprise versions 9.2.x antérieures à 9.2.9
Splunk Splunk Splunk Enterprise versions 9.3.x antérieures à 9.3.7
References

Show details on source website


{
  "$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
  "affected_systems": [
    {
      "description": "Splunk Enterprise versions 9.4.x ant\u00e9rieures \u00e0 9.4.5",
      "product": {
        "name": "Splunk",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk Cloud Platform versions 10.1.2507 ant\u00e9rieures \u00e0 10.1.2507.1",
      "product": {
        "name": "Splunk",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk Cloud Platform versions 9.3.2408 ant\u00e9rieures \u00e0 9.3.2408.124",
      "product": {
        "name": "Splunk",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk Cloud Platform versions 9.3.2411 ant\u00e9rieures \u00e0 9.3.2411.116",
      "product": {
        "name": "Splunk",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk Enterprise versions 10.0.x ant\u00e9rieures \u00e0 10.0.1",
      "product": {
        "name": "Splunk",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk Cloud Platform versions 10.0.2503 ant\u00e9rieures \u00e0 10.0.2503.5",
      "product": {
        "name": "Splunk",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk Enterprise versions 9.2.x ant\u00e9rieures \u00e0 9.2.9",
      "product": {
        "name": "Splunk",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk Enterprise versions 9.3.x ant\u00e9rieures \u00e0 9.3.7",
      "product": {
        "name": "Splunk",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    }
  ],
  "affected_systems_content": "",
  "content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
  "cves": [
    {
      "name": "CVE-2025-20378",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-20378"
    },
    {
      "name": "CVE-2025-52999",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-52999"
    },
    {
      "name": "CVE-2025-20379",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-20379"
    }
  ],
  "initial_release_date": "2025-11-13T00:00:00",
  "last_revision_date": "2025-11-13T00:00:00",
  "links": [],
  "reference": "CERTFR-2025-AVI-1000",
  "revisions": [
    {
      "description": "Version initiale",
      "revision_date": "2025-11-13T00:00:00.000000"
    }
  ],
  "risks": [
    {
      "description": "Non sp\u00e9cifi\u00e9 par l\u0027\u00e9diteur"
    },
    {
      "description": "Contournement de la politique de s\u00e9curit\u00e9"
    }
  ],
  "summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans les produits Splunk. Elles permettent \u00e0 un attaquant de provoquer un contournement de la politique de s\u00e9curit\u00e9 et un probl\u00e8me de s\u00e9curit\u00e9 non sp\u00e9cifi\u00e9 par l\u0027\u00e9diteur.",
  "title": "Multiples vuln\u00e9rabilit\u00e9s dans les produits Splunk",
  "vendor_advisories": [
    {
      "published_at": "2025-11-12",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2025-1103",
      "url": "https://advisory.splunk.com/advisories/SVD-2025-1103"
    },
    {
      "published_at": "2025-11-12",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2025-1102",
      "url": "https://advisory.splunk.com/advisories/SVD-2025-1102"
    },
    {
      "published_at": "2025-11-12",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2025-1101",
      "url": "https://advisory.splunk.com/advisories/SVD-2025-1101"
    }
  ]
}

CERTFR-2025-AVI-0532
Vulnerability from certfr_avis

De multiples vulnérabilités ont été découvertes dans les produits Splunk. Elles permettent à un attaquant de provoquer un problème de sécurité non spécifié par l'éditeur.

Solutions

Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).

Impacted products
Vendor Product Description
Splunk Universal Forwarder Universal Forwarder versions 9.3.x antérieures à 9.3.4
Splunk Splunk Operator for Kubernetes Splunk Operator for Kubernetes versions antérieures à 2.8.0
Splunk Universal Forwarder Universal Forwarder versions 9.2.x antérieures à 9.2.6
Splunk Splunk Splunk versions 9.3.x antérieures à 9.3.4
Splunk Universal Forwarder Universal Forwarder versions 9.4.x antérieures à 9.4.2
Splunk Universal Forwarder Universal Forwarder versions 9.1.x antérieures à 9.1.9
Splunk Splunk Splunk versions 9.1.x antérieures à 9.1.9
Splunk Splunk Splunk versions 9.2.x antérieures à 9.2.6
Splunk Splunk Splunk versions 9.4.x antérieures à 9.4.2
Splunk Splunk AppDynamics Smart Agent Splunk AppDynamics Smart Agent versions antérieures à 25.5.1
References

Show details on source website


{
  "$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
  "affected_systems": [
    {
      "description": "Universal Forwarder versions 9.3.x ant\u00e9rieures \u00e0 9.3.4",
      "product": {
        "name": "Universal Forwarder",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk Operator for Kubernetes versions ant\u00e9rieures \u00e0 2.8.0",
      "product": {
        "name": "Splunk Operator for Kubernetes",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Universal Forwarder versions 9.2.x ant\u00e9rieures \u00e0 9.2.6",
      "product": {
        "name": "Universal Forwarder",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk versions 9.3.x ant\u00e9rieures \u00e0 9.3.4",
      "product": {
        "name": "Splunk",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Universal Forwarder versions 9.4.x ant\u00e9rieures \u00e0 9.4.2",
      "product": {
        "name": "Universal Forwarder",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Universal Forwarder versions 9.1.x ant\u00e9rieures \u00e0 9.1.9",
      "product": {
        "name": "Universal Forwarder",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk versions 9.1.x ant\u00e9rieures \u00e0 9.1.9",
      "product": {
        "name": "Splunk",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk versions 9.2.x ant\u00e9rieures \u00e0 9.2.6",
      "product": {
        "name": "Splunk",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk versions 9.4.x ant\u00e9rieures \u00e0 9.4.2",
      "product": {
        "name": "Splunk",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    },
    {
      "description": "Splunk AppDynamics Smart Agent versions ant\u00e9rieures \u00e0 25.5.1",
      "product": {
        "name": "Splunk AppDynamics Smart Agent",
        "vendor": {
          "name": "Splunk",
          "scada": false
        }
      }
    }
  ],
  "affected_systems_content": "",
  "content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
  "cves": [
    {
      "name": "CVE-2024-24790",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-24790"
    },
    {
      "name": "CVE-2025-22872",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-22872"
    },
    {
      "name": "CVE-2024-45341",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-45341"
    },
    {
      "name": "CVE-2023-44487",
      "url": "https://www.cve.org/CVERecord?id=CVE-2023-44487"
    },
    {
      "name": "CVE-2025-22866",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-22866"
    },
    {
      "name": "CVE-2024-45336",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-45336"
    },
    {
      "name": "CVE-2024-41110",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-41110"
    },
    {
      "name": "CVE-2025-22871",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-22871"
    },
    {
      "name": "CVE-2025-22869",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-22869"
    },
    {
      "name": "CVE-2025-22870",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-22870"
    },
    {
      "name": "CVE-2025-30204",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-30204"
    },
    {
      "name": "CVE-2023-42366",
      "url": "https://www.cve.org/CVERecord?id=CVE-2023-42366"
    }
  ],
  "initial_release_date": "2025-06-24T00:00:00",
  "last_revision_date": "2025-06-24T00:00:00",
  "links": [],
  "reference": "CERTFR-2025-AVI-0532",
  "revisions": [
    {
      "description": "Version initiale",
      "revision_date": "2025-06-24T00:00:00.000000"
    }
  ],
  "risks": [
    {
      "description": "Non sp\u00e9cifi\u00e9 par l\u0027\u00e9diteur"
    }
  ],
  "summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans les produits Splunk. Elles permettent \u00e0 un attaquant de provoquer un probl\u00e8me de s\u00e9curit\u00e9 non sp\u00e9cifi\u00e9 par l\u0027\u00e9diteur.",
  "title": "Multiples vuln\u00e9rabilit\u00e9s dans les produits Splunk",
  "vendor_advisories": [
    {
      "published_at": "2025-06-23",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2025-0607",
      "url": "https://advisory.splunk.com/advisories/SVD-2025-0607"
    },
    {
      "published_at": "2025-06-23",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2025-0610",
      "url": "https://advisory.splunk.com/advisories/SVD-2025-0610"
    },
    {
      "published_at": "2025-06-23",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2025-0608",
      "url": "https://advisory.splunk.com/advisories/SVD-2025-0608"
    },
    {
      "published_at": "2025-06-23",
      "title": "Bulletin de s\u00e9curit\u00e9 Splunk SVD-2025-0609",
      "url": "https://advisory.splunk.com/advisories/SVD-2025-0609"
    }
  ]
}

jvndb-2016-000165
Vulnerability from jvndb
Published
2016-09-16 14:17
Modified
2018-01-24 11:53
Severity ?
Summary
Splunk Enterprise and Splunk Light vulnerable to cross-site scripting
Details
Splunk Enterprise and Splunk Light contain a cross-site scripting vulnerability (CWE-79). Note that this vulnerability is different from JVN#71462075. Noriaki Iwasaki of Cyber Defense Institute, Inc. reported this vulnerability to IPA. JPCERT/CC coordinated with the developer under Information Security Early Warning Partnership.
Impacted products
Show details on JVN DB website


{
  "@rdf:about": "https://jvndb.jvn.jp/en/contents/2016/JVNDB-2016-000165.html",
  "dc:date": "2018-01-24T11:53+09:00",
  "dcterms:issued": "2016-09-16T14:17+09:00",
  "dcterms:modified": "2018-01-24T11:53+09:00",
  "description": "Splunk Enterprise and Splunk Light contain a cross-site scripting vulnerability (CWE-79).\r\n\r\nNote that this vulnerability is different from JVN#71462075.\r\n\r\nNoriaki Iwasaki of Cyber Defense Institute, Inc. reported this vulnerability to IPA.\r\nJPCERT/CC coordinated with the developer under Information Security Early Warning Partnership.",
  "link": "https://jvndb.jvn.jp/en/contents/2016/JVNDB-2016-000165.html",
  "sec:cpe": {
    "#text": "cpe:/a:splunk:splunk",
    "@product": "Splunk",
    "@vendor": "Splunk",
    "@version": "2.2"
  },
  "sec:cvss": [
    {
      "@score": "4.3",
      "@severity": "Medium",
      "@type": "Base",
      "@vector": "AV:N/AC:M/Au:N/C:N/I:P/A:N",
      "@version": "2.0"
    },
    {
      "@score": "6.1",
      "@severity": "Medium",
      "@type": "Base",
      "@vector": "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N",
      "@version": "3.0"
    }
  ],
  "sec:identifier": "JVNDB-2016-000165",
  "sec:references": [
    {
      "#text": "http://jvn.jp/en/jp/JVN74244518",
      "@id": "JVN#74244518",
      "@source": "JVN"
    },
    {
      "#text": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-4858",
      "@id": "CVE-2016-4858",
      "@source": "CVE"
    },
    {
      "#text": "https://nvd.nist.gov/vuln/detail/CVE-2016-4858",
      "@id": "CVE-2016-4858",
      "@source": "NVD"
    },
    {
      "#text": "https://www.ipa.go.jp/en/security/vulnerabilities/cwe.html",
      "@id": "CWE-79",
      "@title": "Cross-site Scripting(CWE-79)"
    }
  ],
  "title": "Splunk Enterprise and Splunk Light vulnerable to cross-site scripting"
}

jvndb-2016-000164
Vulnerability from jvndb
Published
2016-09-16 14:16
Modified
2017-11-27 16:55
Severity ?
Summary
Splunk Enterprise and Splunk Light vulnerable to open redirect
Details
Splunk Enterprise and Splunk Light contain an open redirect vulnerability. Note that this vulnerability is different from JVN#39926655. Noriaki Iwasaki of Cyber Defense Institute, Inc. reported this vulnerability to IPA. JPCERT/CC coordinated with the developer under Information Security Early Warning Partnership.
Impacted products
Show details on JVN DB website


{
  "@rdf:about": "https://jvndb.jvn.jp/en/contents/2016/JVNDB-2016-000164.html",
  "dc:date": "2017-11-27T16:55+09:00",
  "dcterms:issued": "2016-09-16T14:16+09:00",
  "dcterms:modified": "2017-11-27T16:55+09:00",
  "description": "Splunk Enterprise and Splunk Light contain an open redirect vulnerability.\r\n\r\nNote that this vulnerability is different from JVN#39926655.\r\n\r\nNoriaki Iwasaki of Cyber Defense Institute, Inc. reported this vulnerability to IPA.\r\nJPCERT/CC coordinated with the developer under Information Security Early Warning Partnership.",
  "link": "https://jvndb.jvn.jp/en/contents/2016/JVNDB-2016-000164.html",
  "sec:cpe": {
    "#text": "cpe:/a:splunk:splunk",
    "@product": "Splunk",
    "@vendor": "Splunk",
    "@version": "2.2"
  },
  "sec:cvss": [
    {
      "@score": "2.6",
      "@severity": "Low",
      "@type": "Base",
      "@vector": "AV:N/AC:H/Au:N/C:N/I:P/A:N",
      "@version": "2.0"
    },
    {
      "@score": "4.7",
      "@severity": "Medium",
      "@type": "Base",
      "@vector": "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N",
      "@version": "3.0"
    }
  ],
  "sec:identifier": "JVNDB-2016-000164",
  "sec:references": [
    {
      "#text": "https://jvn.jp/en/jp/JVN64800312/index.html",
      "@id": "JVN#64800312",
      "@source": "JVN"
    },
    {
      "#text": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-4859",
      "@id": "CVE-2016-4859",
      "@source": "CVE"
    },
    {
      "#text": "https://nvd.nist.gov/vuln/detail/CVE-2016-4859",
      "@id": "CVE-2016-4859",
      "@source": "NVD"
    },
    {
      "#text": "https://www.ipa.go.jp/en/security/vulnerabilities/cwe.html",
      "@id": "CWE-20",
      "@title": "Improper Input Validation(CWE-20)"
    }
  ],
  "title": "Splunk Enterprise and Splunk Light vulnerable to open redirect"
}

jvndb-2016-000163
Vulnerability from jvndb
Published
2016-09-16 14:08
Modified
2017-11-27 16:55
Severity ?
Summary
Splunk Enterprise and Splunk Light vulnerable to open redirect
Details
Splunk Enterprise and Splunk Light contain an open redirect vulnerability. Note that this vulnerability is different from JVN#64800312. Noriaki Iwasaki of Cyber Defense Institute, Inc. reported this vulnerability to IPA. JPCERT/CC coordinated with the developer under Information Security Early Warning Partnership.
Impacted products
Show details on JVN DB website


{
  "@rdf:about": "https://jvndb.jvn.jp/en/contents/2016/JVNDB-2016-000163.html",
  "dc:date": "2017-11-27T16:55+09:00",
  "dcterms:issued": "2016-09-16T14:08+09:00",
  "dcterms:modified": "2017-11-27T16:55+09:00",
  "description": "Splunk Enterprise and Splunk Light contain an open redirect vulnerability.\r\n\r\nNote that this vulnerability is different from JVN#64800312.\r\n\r\nNoriaki Iwasaki of Cyber Defense Institute, Inc. reported this vulnerability to IPA.\r\nJPCERT/CC coordinated with the developer under Information Security Early Warning Partnership.",
  "link": "https://jvndb.jvn.jp/en/contents/2016/JVNDB-2016-000163.html",
  "sec:cpe": {
    "#text": "cpe:/a:splunk:splunk",
    "@product": "Splunk",
    "@vendor": "Splunk",
    "@version": "2.2"
  },
  "sec:cvss": [
    {
      "@score": "2.6",
      "@severity": "Low",
      "@type": "Base",
      "@vector": "AV:N/AC:H/Au:N/C:N/I:P/A:N",
      "@version": "2.0"
    },
    {
      "@score": "4.7",
      "@severity": "Medium",
      "@type": "Base",
      "@vector": "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N",
      "@version": "3.0"
    }
  ],
  "sec:identifier": "JVNDB-2016-000163",
  "sec:references": [
    {
      "#text": "https://jvn.jp/en/jp/JVN39926655/index.html",
      "@id": "JVN#39926655",
      "@source": "JVN"
    },
    {
      "#text": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-4857",
      "@id": "CVE-2016-4857",
      "@source": "CVE"
    },
    {
      "#text": "https://nvd.nist.gov/vuln/detail/CVE-2016-4857",
      "@id": "CVE-2016-4857",
      "@source": "NVD"
    },
    {
      "#text": "https://www.ipa.go.jp/en/security/vulnerabilities/cwe.html",
      "@id": "CWE-20",
      "@title": "Improper Input Validation(CWE-20)"
    }
  ],
  "title": "Splunk Enterprise and Splunk Light vulnerable to open redirect"
}

jvndb-2016-000162
Vulnerability from jvndb
Published
2016-09-16 13:56
Modified
2017-11-27 16:55
Severity ?
Summary
Splunk Enterprise and Splunk Lite vulnerable to cross-site scripting
Details
Splunk Enterprise and Splunk Lite contain a stored cross-site scripting vulnerability (CWE-79). Note that this vulnerability is different from JVN#74244518. Noriaki Iwasaki of Cyber Defense Institute, Inc. reported this vulnerability to IPA. JPCERT/CC coordinated with the developer under Information Security Early Warning Partnership.
Impacted products
Show details on JVN DB website


{
  "@rdf:about": "https://jvndb.jvn.jp/en/contents/2016/JVNDB-2016-000162.html",
  "dc:date": "2017-11-27T16:55+09:00",
  "dcterms:issued": "2016-09-16T13:56+09:00",
  "dcterms:modified": "2017-11-27T16:55+09:00",
  "description": "Splunk Enterprise and Splunk Lite contain a stored cross-site scripting vulnerability (CWE-79).\r\n\r\nNote that this vulnerability is different from JVN#74244518.\r\n\r\nNoriaki Iwasaki of Cyber Defense Institute, Inc. reported this vulnerability to IPA.\r\nJPCERT/CC coordinated with the developer under Information Security Early Warning Partnership.",
  "link": "https://jvndb.jvn.jp/en/contents/2016/JVNDB-2016-000162.html",
  "sec:cpe": {
    "#text": "cpe:/a:splunk:splunk",
    "@product": "Splunk",
    "@vendor": "Splunk",
    "@version": "2.2"
  },
  "sec:cvss": [
    {
      "@score": "4.0",
      "@severity": "Medium",
      "@type": "Base",
      "@vector": "AV:N/AC:L/Au:S/C:N/I:P/A:N",
      "@version": "2.0"
    },
    {
      "@score": "4.8",
      "@severity": "Medium",
      "@type": "Base",
      "@vector": "CVSS:3.0/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N",
      "@version": "3.0"
    }
  ],
  "sec:identifier": "JVNDB-2016-000162",
  "sec:references": [
    {
      "#text": "http://jvn.jp/en/jp/JVN71462075",
      "@id": "JVN#71462075",
      "@source": "JVN"
    },
    {
      "#text": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-4856",
      "@id": "CVE-2016-4856",
      "@source": "CVE"
    },
    {
      "#text": "https://nvd.nist.gov/vuln/detail/CVE-2016-4856",
      "@id": "CVE-2016-4856",
      "@source": "NVD"
    },
    {
      "#text": "https://www.ipa.go.jp/en/security/vulnerabilities/cwe.html",
      "@id": "CWE-79",
      "@title": "Cross-site Scripting(CWE-79)"
    }
  ],
  "title": "Splunk Enterprise and Splunk Lite vulnerable to cross-site scripting"
}